<feed xmlns='http://www.w3.org/2005/Atom'>
<title>user/map/catlfish.git/src, branch compileconfig</title>
<subtitle>Magnus' CT repository</subtitle>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/'/>
<entry>
<title>Cache SCT:s</title>
<updated>2015-03-08T02:27:59+00:00</updated>
<author>
<name>Magnus Ahltorp</name>
<email>map@kth.se</email>
</author>
<published>2015-03-08T02:27:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=1f63c850a12797c5efd2db8368ef7219ed555ce2'/>
<id>1f63c850a12797c5efd2db8368ef7219ed555ce2</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Save STH instead of calculating a new one each time.</title>
<updated>2015-03-04T14:42:59+00:00</updated>
<author>
<name>Magnus Ahltorp</name>
<email>map@kth.se</email>
</author>
<published>2015-03-04T14:42:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=e0f11a58033d52c70bc76b4b5611cb88485d4653'/>
<id>e0f11a58033d52c70bc76b4b5611cb88485d4653</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Added authentication between frontend and storage nodes</title>
<updated>2015-02-27T13:24:21+00:00</updated>
<author>
<name>Magnus Ahltorp</name>
<email>map@kth.se</email>
</author>
<published>2015-02-26T15:54:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=103e0ee850404a5c8dc69bbbf79b2508a9c55d7a'/>
<id>103e0ee850404a5c8dc69bbbf79b2508a9c55d7a</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Fix a bug where verification of EC signatures made us crash.</title>
<updated>2015-02-27T00:55:15+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2015-02-27T00:55:15+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=b41acdada125a41c40e94177b8ebdc2bb7d130b6'/>
<id>b41acdada125a41c40e94177b8ebdc2bb7d130b6</id>
<content type='text'>
Also, have valid_chain_p return boolean, add some debug logging and
detect invalid signature types instead of crashing.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Also, have valid_chain_p return boolean, add some debug logging and
detect invalid signature types instead of crashing.
</pre>
</div>
</content>
</entry>
<entry>
<title>Verify that known roots are indeed signing themselves.</title>
<updated>2015-02-27T00:51:12+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2015-02-27T00:51:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=85615c8e621aa16026faf07f01bf0ba0776c191f'/>
<id>85615c8e621aa16026faf07f01bf0ba0776c191f</id>
<content type='text'>
This filters out certificates with signing algorithms that we can't
handle.

Also, make unit tests better.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
This filters out certificates with signing algorithms that we can't
handle.

Also, make unit tests better.
</pre>
</div>
</content>
</entry>
<entry>
<title>Even more debug logging.</title>
<updated>2015-02-25T15:22:18+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2015-02-25T15:21:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=bdfde9547c151588917fd932ecf74377d3c378c3'/>
<id>bdfde9547c151588917fd932ecf74377d3c378c3</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Add debug logging.</title>
<updated>2015-02-25T15:01:14+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2015-02-25T15:01:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=4312e98aad7aaf1d2bc43b3e0ef0ace5a5788c5f'/>
<id>4312e98aad7aaf1d2bc43b3e0ef0ace5a5788c5f</id>
<content type='text'>
Trying to figure out why public_key:verify isn't found in docker images.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Trying to figure out why public_key:verify isn't found in docker images.
</pre>
</div>
</content>
</entry>
<entry>
<title>Log time spent serving a request</title>
<updated>2015-02-20T13:12:47+00:00</updated>
<author>
<name>Magnus Ahltorp</name>
<email>map@kth.se</email>
</author>
<published>2015-02-02T15:47:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=4f4a1cb883f53538ee25ba618aeae5d00202166f'/>
<id>4f4a1cb883f53538ee25ba618aeae5d00202166f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Make mochiweb pool size configurable</title>
<updated>2015-02-20T13:12:47+00:00</updated>
<author>
<name>Magnus Ahltorp</name>
<email>map@kth.se</email>
</author>
<published>2015-01-29T23:32:15+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=5fbbb3e0bf7ea28dc8c5061ccb73fa5827872537'/>
<id>5fbbb3e0bf7ea28dc8c5061ccb73fa5827872537</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Stop validating that cert.issuer matches issuer.subject.</title>
<updated>2015-02-20T11:20:09+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2015-02-20T11:20:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/user/map/catlfish.git/commit/?id=4d2993890fed46c5611735e84d4f737e8c342718'/>
<id>4d2993890fed46c5611735e84d4f737e8c342718</id>
<content type='text'>
Even canoncalized versions of this data mismatch in otherwise proper
chains. Since we're not here to validate chains for any other reasons
than attribution and spam control, let's stop validate
cert.issuer==candidate.subject. We still verify the cryptographic
chain with signatures of tbsCertificates of course.

Resolves CATLFISH-19.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Even canoncalized versions of this data mismatch in otherwise proper
chains. Since we're not here to validate chains for any other reasons
than attribution and spam control, let's stop validate
cert.issuer==candidate.subject. We still verify the cryptographic
chain with signatures of tbsCertificates of course.

Resolves CATLFISH-19.
</pre>
</div>
</content>
</entry>
</feed>
